Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Control Assessor (SCA)

Novul Solutions

Job Description

Job Description

We are seeking an experienced Security Control Assessor to support the assessment, validation, and authorization of DoD information systems. This role requires a strong background in the Risk Management Framework (RMF) process, security control assessment, and cybersecurity compliance. The ideal candidate will be skilled in evaluating how security controls are implemented, measuring their resilience and reliability, and determining how changes in operational or environmental conditions may affect system security.

Key Responsibilities:

  • Conduct in-depth security control assessments for DoD information systems in accordance with NIST SP 800-53, NIST SP 800-37, DoD RMF, and JSIG requirements.
  • Communicate government-approved mitigation and remediation guidance to system owners in support of the RMF process.
  • Assess and validate the implementation of security controls, including how they support system resilience, reliability, and overall cybersecurity posture.
  • Apply and interpret the Confidentiality, Integrity, and Availability (CIA) triad and related categorization impact levels (High, Moderate, Low) for assigned systems and programs.
  • Validate inherited security controls from hosted, interconnected, or external systems.
  • Evaluate program compliance with controls related to Ports, Protocols, and Services (PP&S), including proper handling, management, and review of log files.
  • Lead the review, preparation, and quality assurance of Authorization to Operate (ATO) packages and supporting documentation.
  • Identify control gaps, document findings, and provide actionable recommendations for remediation.
  • Coordinate with stakeholders, system owners, engineers, and cybersecurity teams to ensure security requirements are properly addressed.
  • Support assessment activities, artifact reviews, interviews, and technical validations required for authorization decisions.
Requirements
  • 8+ years of experience in cybersecurity.

  • 5+ years of experience in Certification and Accreditation (C&A), Assessment and Authorization (A&A), or closely related cybersecurity compliance functions.

  • Demonstrated expertise with the Risk Management Framework (RMF).

  • Strong knowledge of NIST SP 800-37, NIST SP 800-53, and CNSSI 1253.

  • Experience supporting DoD security authorization efforts and control validation activities.

  • Proven ability to review and assess system security documentation for completeness and accuracy.

  • Previous leadership or team lead experience.

  • Strong written and verbal communication skills, with the ability to explain assessment findings and remediation actions to technical and non-technical stakeholders.

  • Bachelor’s Degree required.

Benefits Core Benefits:
  • Paid Time Off PTO):TEN (10) Paid days off & FIVE (5) Floating days off.
  • Holidays: 11 Paid Holidays. Flex time can be utilized instead of holiday time usage.
  • Payroll: Paid Bi-Monthly.
  • 401(k): Partnered with the SECOND LARGEST Retirement plan provider in the U.S. Guaranteed 3% match. Eligibility – 21 years of age or older, after 3 months of employment
  • Individual or company-wide performance and recognition awards (Quarterly

Health Benefits:

  • UNITED HEALTHCARE PPO, extensive national coverage.
  • INCLUDES: Medical/Dental/Vision/HSA.
  • Eligible on the first of the month, immediately after the start date.
  • Submit the enrollment form within 30 days of your start date otherwise, you will have to wait until October for the new year enrollment.

Quality of Life Benefits:

  • Training & Career Development Reimbursement of Tuition and training needed to support career development.
  • $150 monthly reimbursement contribution paid monthly towards parking expenses.
  • Receipts must be submitted by the close of business on the 25th of each month.
  • Reimbursements will be paid on the first payroll AFTER reimbursements are submitted each month.

Special Benefits:

  • Performance bonus – Project-based
  • Yearly bonus – Company based
Vacancy posted 28 days ago
Similar jobs that could be interesting for youBased on the Security Control Assessor (SCA) in Arlington, VA vacancy
  •  ...Job Description Job Description SECURITY CLEARANCE REQUIREMENT: TS, WITH SCI ELIGIBILITY ***POSITION REQUIRES US CITIZENSHIP*** Position Title: Security Control Assessor (SCA) II Location: Arlington, VA (on-site) Salary Range: TBD based on experience  Position... 
    Suggested
    Work at office

    RedTrace Technologies Inc

    Arlington, VA
    2 days ago
  •  ...Job Description Job Description GAMA-1 Technologies is seeking a Senior Security Control Assessor to support cybersecurity assessments and compliance activities across federal systems and national security environments. In this role, you will evaluate security controls... 
    Suggested
    Local area

    GAMA-1 Technologies

    Washington DC
    28 days ago
  • $70k

     ...addressing intricate issues and ensuring a more secure future. AGE Solutions is looking for a Security Control Assessor, Intermediate to join our team in support of a...  ...Coordinate logistics, test plans, and scope with the SCA Team Lead. Perform vulnerability assessments... 
    Suggested
    Contract work
    Immediate start
    Remote work
    Relocation

    AGE solutions

    Alexandria, VA
    14 days ago
  • $102.83k - $150k

     ...Salary Range: $102,831.00 - $150,000.00 Security Clearance: TS/SCI Level of Experience: Mid...  .... Below are the salary ranges: Security Controls Accessor: $85,185 - $135,000 Sr....  ...What you will do The Security Controls Assessor plays a critical role in evaluating, validating... 
    Suggested
    Full time
    Work experience placement
    Local area
    Worldwide

    HII Mission Technologies Division

    Springfield, VA
    5 days ago
  •  ...Job Description Job Description Benefits: ~ Competitive salary About this Role: We are looking for a SME Security Control Assessor that supports security control assessment activities for HHS-ACF information systems by applying NIST security controls and... 
    Suggested
    Work at office
    Local area
    Work from home
    Flexible hours

    IMAGINEEER LLC

    Arlington, VA
    4 days ago
  •  ...assets, processes, policies, and people delivering value. See Link To the ProSidian website at Description ProSidian Seeks a Security Controls Assessor / ISSO | Human Capital Programmatic Evaluation & Compliance - Cybersecurity & Compliance [NSF0083083] for Program Support... 
    Full time
    Contract work
    Temporary work
    For contractors
    H1b
    Work at office
    Flexible hours

    ProSidian Consulting, LLC

    Alexandria, VA
    4 days ago
  • $130k - $150k

     ...Job Description Job Description Senior Security Control Assessor Overview: TSA is currently seeking a Senior Security Control Assessor who will serve as a Functional Lead and provide support to our NAVAIR customer in the DC Metro area. Roles/Responsibilities... 

    Technology Security Associates, Inc.

    Arlington, VA
    18 days ago
  • $87k - $198k

     ...Security Control Assessor and System Certification Specialist, Senior The Opportunity: Function as a Senior System Certification Specialist...  ...in NIST security guidance and security control assessment (SCA) processes using the NIST Risk Management Framework (RMF). Guide... 
    Full time
    Contract work
    Part time
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    more than 2 months ago
  • $155.62k - $210.54k

     ...Job Qualifications: Skills: RMF, Security Content Automation Protocol (SCAP), Security...  ...to make a personal impact as a Security Control Assessor supporting customer activities. GDIT is...  ...: 10+ yrs (Must have 4+ yrs of hands-on SCA experience) Clearance : TS/SCI with... 
    Full time
    Temporary work
    Part time
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    GDIT

    McLean, VA
    15 days ago
  •  ...TLA is seeking a Security Assessor for evaluating the effectiveness of security measures and controls within the organization's information systems and software applications to ensure the protection of data and compliance with industry standards and regulations. This... 
    Work experience placement

    TLA Inc

    Washington DC
    3 days ago
  • Direct experience in NIST security control assessments Direct experience in System Security Plan (SSP) development Direct experience conducting or supporting NIST-based risk assessments Demonstrated success interfacing directly with system owners and executive management... 

    Business Integra Inc

    Washington DC
    4 days ago
  •  ...preview of the full benefits package. Role: Mid-Level Security Assessor Location: Remote (Must be available to work EST hours)...  ...required Conducting independent assessments of security controls as documented in the System Security Plan (SSP) Conducting... 
    Local area
    Immediate start
    Remote work

    Saliense Consulting LLC

    McLean, VA
    19 days ago
  •  ...full-time position for a CMMC Certified Assessor (CCA) at CyberRx, Inc. You need to be...  ...collaborators dedicated to safeguarding national security and committed to partnering with our...  ...requirements related to handling Controlled Unclassified Information (CUI). ·... 
    Full time
    For contractors

    CYBERRX INC

    Silver Spring, MD
    16 days ago
  •  ...IT Security Analyst / Assessor NXTKey Corporation has been delivering Information Technology, Information management, Information Assurance...  ...effectiveness of current security measures. IT Security Control Assessor needs to possess the following skills: ~5+... 
    Contract work
    Work experience placement
    Work at office

    NXTKey Corporation

    Washington DC
    3 days ago
  •  ...Consulting Travel Required: Up to 25% Clearance Required: Ability to Obtain Secret What You Will Do: Conduct FISMA security control assessments in accordance with NIST SP 800-53 and NIST SP 800-53A Support system authorization efforts across the RMF lifecycle... 
    Temporary work
    Flexible hours

    Guidehouse

    Mc Lean, VA
    2 days ago
  •  ...date: CISSP-ISSAP, CISSP-ISSEP, CISSP, Security+ CE, CySA+, PPDA, Agile IC, or SNOW App Dev...  ...looking for a Regional Cyber Security Assessor to become part of our Federal Strategic...  ...established operating procedures for data access controls, storage, transmission, and destruction... 
    Local area
    Remote work
    Overseas

    Peraton

    Arlington, VA
    2 days ago
  • Assessor - Central Asia Contractor Position Status: Level: Mid-level, independent contractor Location: Central Asia Main Purpose of the...  ...contractor with experience evaluating ownership, management and control of private companies incorporated in Central Asia. Job... 
    Full time
    For contractors

    Page Mechanical Group, Inc.

    Washington DC
    5 days ago
  •  ...candidate will work within a collaborative environment, focusing on risk management processes and continuous monitoring of cybersecurity controls. A Bachelor's degree in a related field is required along with knowledge of cybersecurity principles. #J-18808-Ljbffr Office of... 
    Work at office

    Office of the Under Secretary of War for Research and Engine...

    Arlington, VA
    4 days ago
  • $95k - $143.6k

     ...responsible for performing information security reviews of third parties that provide services...  ...to determine if information security controls are in place and documenting the...  ...Required Qualifications 2+ years as a cyber Assessor Experience in Information Security and/... 
    Work at office
    Flexible hours
    Shift work
    Day shift

    Bank of America

    Washington DC
    4 days ago
  •  ...Focuses on solving conflict, not blaming; Maintains confidentiality; Listens to others without interrupting; Keeps emotions under control; Remains open to others' ideas and tries new things. Judgement - Displays willingness to make decisions; Exhibits sound and accurate... 
    Work at office

    Healthcare Legal Solutions LLC

    Washington DC
    12 days ago
  •  ...Type Exempt FT Phone (***) ***-**** Email ****@*****.*** About the Opportunity The IT Security Specialist III will lead and conduct in-depth assessments of security control effectiveness across classified and unclassified information systems, ensuring compliance... 
    Contract work
    Local area
    Remote work

    GOEBEL FIXTURE COMPANY

    Washington DC
    21 hours ago
  • $132.8k - $219.1k

     ...appropriate internal and./or external resources for specific activities required to effectively evaluate claims, such as Subro, Risk Control, nurse consultants and fire or fraud investigators and other experts. Verify the nature and extent of injury or property damage... 
    Local area

    Travelers Insurance

    Washington DC
    9 hours ago
  • $121k - $140k

     ...commensurate experience Minimum of seven years handling complex litigated bodily injury claims Familiarity with owner and contractor-controlled insurance policies and programs as well as wrap policies, is a plus Experience handling New York Labor Law claims is a plus... 
    Temporary work
    For contractors
    Work at office
    Remote work
    3 days per week

    The Hartford

    Washington DC
    1 day ago
  •  ...Focuses on solving conflict, not blaming; Maintains confidentiality; Listens to others without interrupting; Keeps emotions under control; Remains open to others' ideas and tries new things. Judgement - Displays willingness to make decisions; Exhibits sound and accurate... 
    Work at office

    Healthcare Legal Solutions

    Washington DC
    3 days ago
  • $39 - $44 per hour

     ...Job Description Job Description Salary: $39-$44 Job Title: PASRR Assessor Reports to: Chief Operating Officer (COO) Location: Washington, DC Position Type: PRN (As Needed) Exempt Status: Non-Exempt General Summary The Assessor Reviewer II -... 
    Relief
    Work at office
    Local area
    Weekday work

    WellCentric DC

    Washington DC
    8 days ago
  •  ...Strong knowledge of contract, tort, subrogation, contribution, indemnity and other related law. • Able to effectively direct and control work of outside counsel and TPA. • Superior verbal and written communication skills. • Excellent evaluation and analytical skills... 
    Contract work

    Rylem Staffing

    Washington DC
    1 day ago
  • $72.91k - $95k

     ...minimum seven) technical operations colleagues for a wide span of control; may delegate some duties to others within the unit. Identifies...  ...Auditory/Visual: Hearing, vision and talking NOTE: Credit security clearance, confirmed via a background credit check, is required... 
    Contract work
    Work at office
    Local area
    Flexible hours

    Sedgwick

    Washington DC
    6 days ago
  • $23.16 per hour

     ...and analyzes various complex potential claims with emphasis on controlling losses through effective managed care. This includes following...  ...and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy... 
    For contractors
    Work at office
    Local area

    Highmark Health

    Washington DC
    5 days ago
  •  ...key business partner through our Castle High Value and EXL Risk Control service offerings. We offer a variety of field inspections and...  ...be expected to manage assignments you accept, successfully secure customer appointments within a local territory and complete... 
    For contractors
    Work at office
    Local area
    Work from home

    EXL

    Washington DC
    4 days ago
  •  ...Partners with Lead Appraiser to resolve ongoing requests and make process improvement recommendations to eliminate addendums and quality control rejections. Participates in monthly Appraiser meeting. Meets all department turn time expectations and proactively escalates... 
    Local area

    First American

    Washington DC
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Control Assessor (SCA). Be the first to apply!